As a member of the Security Technology Operations (STO) team , the Lvl2 Security Technology Analyst will work with a global security toolkit, focusing on DLP and Endpoint Management using Microsoft Purview, Tanium and Qualys. The role involves taking a lead in incidents and service requests, supporting the consultant, and providing advanced troubleshooting and mentorship to more junior Lvl1 team members.
Key Responsibilities:-
Lead and manage incident and request handling for DLP, Tanium and Qualys
-
Attain and maintain SLAs and KPIs, providing detailed reporting and the timely escalation when necessary to management
-
Escalate complex issues to STO management and leadership as necessary
-
Conduct log analysis to identify potential data loss issues
-
Assist in advanced troubleshooting of system performance-related incidents
-
Engage with stakeholders including Business Unit, Data Privacy and Data Protection Engineering teams
-
Assist in the creation, configuration updates, and testing of DLP policies and Tanium workflows
-
Support change request creation, representation, and implementation for the technology stack
-
Provide general workstation and server troubleshooting support and support Lvl1 team members
-
Participate in major incident management calls to provide support on active incidents
-
Mentor and share advanced knowledge with Lvl1 analysts
-
Identify and help implement automation and optimization opportunities
-
Configuration the alerts, test the configuration, service incident handling SNOW
Experience:-
Prior experience with and understanding of Data Loss Prevention terminology and processes
-
3-5 years of experience in a security operations role and fundamental knowledge of incident and service request handling
-
Good understanding of Windows, MacOS, and *nix operating systems
-
Proven advanced troubleshooting capabilities
-
Familiarity with scripting languages such as PowerShell and batch files
-
Exceptional communication skills and the ability to mentor junior team members